therealdreg / emuhookdetector
hook detector using emulation and comparing static with dynamic outputs
☆17Updated last year
Alternatives and similar repositories for emuhookdetector:
Users that are interested in emuhookdetector are comparing it to the libraries listed below
- Old and probably outdated IDA plugins☆24Updated 8 years ago
- Kernel Shellcode to add all privileges in token☆13Updated 7 years ago
- Dalvik Header Plugin for IDA Pro☆21Updated 12 years ago
- ☆9Updated 7 years ago
- Debugger for HTC phones bootloader (HBOOT).☆19Updated 11 years ago
- This repository is a clne of the new cuckoo monitor where I added some stuff to get the calling address for every hooked API☆8Updated 8 years ago
- Plugin Manager for IDA Pro☆9Updated 9 years ago
- Analysis and Modification Tool for Executables☆16Updated 5 years ago
- Dynamic binary analysis via platform emulation☆12Updated 6 years ago
- A tool evaluates security configurations of a given PE based on SDL without source code☆13Updated 10 years ago
- ☆15Updated 8 years ago
- ☆12Updated 9 years ago
- does reflective dll injection☆8Updated 11 years ago
- A library for interacting with Windows process memory☆7Updated 6 years ago
- Windows x86 Hardware Breakpoint class for Windows >Vista☆22Updated 8 years ago
- wow64 syscall filter☆13Updated 10 years ago
- Allows you to add breakpoints from IDA (from the graph/text view) to WinDbg easily☆14Updated 6 years ago
- Continuation of the popular patchdiff IDA plugin☆10Updated 10 years ago
- bmod parses binaries for modification/patching and disassembles machine code sections.☆12Updated 6 years ago
- PEAnalyser is an open source PE file analysis tool.☆11Updated 4 years ago
- ☆9Updated 7 years ago
- findLoop - find possible encryption/decryption or compression/decompression code☆26Updated 5 years ago
- User-mode part of Zerokit platform☆20Updated 5 years ago
- IDA2PAT_Reloaded for windows and mac osx☆13Updated 7 years ago
- An idea in hooking APIs by replacing calls that lead to them☆1Updated 2 years ago
- Obtain remote process cookies by performing a brute-force attack on ntdll.RtlDecodePointer using known pointer encodings.☆22Updated 7 years ago
- Cross-Qt compatibility module for IDAPython.☆13Updated 5 years ago
- A simple tool to help reverse engineers while dealing with obfuscated code.☆20Updated 8 years ago
- An aggregate of tools used in the core of vmp_dbg plus other parsing utils to parse vmp bc.☆15Updated 8 years ago
- ☆13Updated 7 years ago